fromTechCrunch
1 day agoBug in jury systems used by several US states exposed sensitive personal data | TechCrunch
The bug meant it was possible for anyone to obtain the information about jurors who are selected for service. To log into these platforms, a juror is provided a unique numerical identifier assigned to them, which could be brute-forced since the number was sequentially incremental. The platform also did not have any mechanism to prevent anyone from flooding the login pages with a large number of guesses, a feature known as "rate-limiting."
Privacy technologies







